Filter out stream names in subscription and message requests.

(imported from commit bf1cf085361e45da21d512e77829059fe35c95c0)
This commit is contained in:
Jessica McKellar
2013-01-16 10:45:43 -05:00
parent cb0de0fc60
commit e3b852b79e

View File

@@ -3,7 +3,8 @@ from django.views.debug import SafeExceptionReporterFilter
class HumbugExceptionReporterFilter(SafeExceptionReporterFilter): class HumbugExceptionReporterFilter(SafeExceptionReporterFilter):
def get_post_parameters(self, request): def get_post_parameters(self, request):
filtered_post = SafeExceptionReporterFilter.get_post_parameters(self, request).copy() filtered_post = SafeExceptionReporterFilter.get_post_parameters(self, request).copy()
filtered_vars = ['content', 'secret', 'password', 'key', 'api_key', 'subject', 'stream'] filtered_vars = ['content', 'secret', 'password', 'key', 'api_key', 'subject', 'stream',
'subscriptions', 'to']
for var in filtered_vars: for var in filtered_vars:
if var in filtered_post: if var in filtered_post: